CVE-2023-28900
18.01.2024, 17:15
The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing to obtain nicknames and other user identifiers of Skoda Connect service users by specifying an arbitrary vehicle VIN number.Enginsight
Vendor | Product | Version |
---|---|---|
skoda-auto | skoda_connect | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration